Vulnerability Name CVE Severity
Ruby Improper Restriction of XML External Entity Reference Vulnerability (CVE-2021-28965) CVE-2021-28965
Ruby Inadequate Encryption Strength Vulnerability (CVE-2021-32066) CVE-2021-32066
Ruby Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') Vulnerability (CVE-2020-25613) CVE-2020-25613
Ruby Inefficient Regular Expression Complexity Vulnerability (CVE-2023-22795) CVE-2023-22795
Ruby Inefficient Regular Expression Complexity Vulnerability (CVE-2023-28756) CVE-2023-28756
Ruby Interpretation Conflict Vulnerability (CVE-2021-33621) CVE-2021-33621
Ruby Numeric Errors Vulnerability (CVE-2008-2376) CVE-2008-2376
Ruby Numeric Errors Vulnerability (CVE-2008-2725) CVE-2008-2725
Ruby Numeric Errors Vulnerability (CVE-2008-2726) CVE-2008-2726
Ruby on Rails Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2019-5419) CVE-2019-5419
Ruby on Rails CVE-2006-4112 Vulnerability (CVE-2006-4112) CVE-2006-4112
Ruby on Rails CVE-2019-5418 Vulnerability (CVE-2019-5418) CVE-2019-5418
Ruby on Rails CVE-2021-22902 Vulnerability (CVE-2021-22902) CVE-2021-22902
Ruby on Rails Deserialization of Untrusted Data Vulnerability (CVE-2018-16476) CVE-2018-16476
Ruby on Rails Deserialization of Untrusted Data Vulnerability (CVE-2020-8164) CVE-2020-8164
Ruby on Rails directory traversal vulnerability CVE-2014-0130
Ruby on Rails DoubleTap RCE (CVE-2019-5420)
Ruby on Rails Generation of Error Message Containing Sensitive Information Vulnerability (CVE-2021-22885) CVE-2021-22885
Ruby on Rails Improper Access Control Vulnerability (CVE-2016-6317) CVE-2016-6317
Ruby on Rails Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2006-4111) CVE-2006-4111
Ruby on Rails Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2020-8163) CVE-2020-8163
Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-0156) CVE-2013-0156
Ruby on Rails Improper Input Validation Vulnerability (CVE-2016-2098) CVE-2016-2098
Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2016-0752) CVE-2016-0752
Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2008-4094) CVE-2008-4094
Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2011-0448) CVE-2011-0448
Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2011-2930) CVE-2011-2930
Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2012-2695) CVE-2012-2695
Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2012-6496) CVE-2012-6496
Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2014-3482) CVE-2014-3482
Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2014-3483) CVE-2014-3483
Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-17916) CVE-2017-17916
Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-17917) CVE-2017-17917
Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-17919) CVE-2017-17919
Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-17920) CVE-2017-17920
Ruby on Rails Inefficient Regular Expression Complexity Vulnerability (CVE-2023-22792) CVE-2023-22792
Ruby on Rails Inefficient Regular Expression Complexity Vulnerability (CVE-2023-22795) CVE-2023-22795
Ruby on Rails Other Vulnerability (CVE-2013-0333) CVE-2013-0333
Ruby on Rails Other Vulnerability (CVE-2021-22904) CVE-2021-22904
Ruby on Rails Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-0449) CVE-2011-0449
Ruby on Rails Permissions, Privileges, and Access Controls Vulnerability (CVE-2014-3514) CVE-2014-3514
Ruby on Rails Resource Management Errors Vulnerability (CVE-2015-7581) CVE-2015-7581
Ruby on Rails Resource Management Errors Vulnerability (CVE-2016-0751) CVE-2016-0751
Ruby on Rails SQL injection CVE-2012-2695
Ruby on Rails Uncontrolled Resource Consumption Vulnerability (CVE-2021-22880) CVE-2021-22880
Ruby on Rails Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2020-8162) CVE-2020-8162
Ruby on Rails weak/known secret token CVE-2013-0156
Ruby Other Vulnerability (CVE-2021-41817) CVE-2021-41817
Ruby Out-of-bounds Read Vulnerability (CVE-2022-28739) CVE-2022-28739
Ruby Permissions, Privileges, and Access Controls Vulnerability (CVE-2008-3655) CVE-2008-3655
Ruby Resource Management Errors Vulnerability (CVE-2008-2664) CVE-2008-2664
Ruby Resource Management Errors Vulnerability (CVE-2008-3656) CVE-2008-3656
Ruby Resource Management Errors Vulnerability (CVE-2008-4310) CVE-2008-4310
Ruby Resource Management Errors Vulnerability (CVE-2014-6438) CVE-2014-6438
Ruby Uncontrolled Resource Consumption Vulnerability (CVE-2018-8777) CVE-2018-8777
Ruby Use of Externally-Controlled Format String Vulnerability (CVE-2018-8778) CVE-2018-8778
Rukovoditel Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-11818) CVE-2020-11818
Rukovoditel Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2021-30224) CVE-2021-30224
Rukovoditel Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2022-45020) CVE-2022-45020
Rukovoditel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-13587) CVE-2020-13587
Rukovoditel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-13588) CVE-2020-13588
Rukovoditel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-13589) CVE-2020-13589
Rukovoditel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-13590) CVE-2020-13590
Rukovoditel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-13591) CVE-2020-13591
Rukovoditel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-13592) CVE-2020-13592
Rukovoditel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2022-43288) CVE-2022-43288
Rukovoditel Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2018-20166) CVE-2018-20166
SAML Consumer Service External Dereference SSRF
SAML Consumer Service XML entity injection (XXE)
SAML Consumer Service XSLT injection
SAML Consumer Service XSS vulnerability
SAML Response without signature
SAML Respose signature exclusion
Sangfor NGAF Authentication Bypass
SAP B2B/B2C CRM Local File Inclusion